What version of ad-aware are you trying to install (07/08/AE) and what type (free/plus/pro) and then what operating system are you using (XP/Vista)?

Casey

Just putting in my 2 cents worth.

I believe the ADMIN_CLASS_LIB.dll belongs to the eDSloader.exe program that comes optional as part of the 'Acer Empowering Suite" on Acer computers. It is the optional part of the suite that can be downloaded and installed to encrypt files.

I can certainly confirm that admin_class_lib.dll could possibly be part of the ****ware acer preinstall on their systems - I have it on mine, and AAW detects it, and mine is an acer system, however of interesting note the default action in my AAW is to "Allow once" not "Quarantine".

If you are a paying user (Plus/Pro License) you should visit the Lavasoft Support Centre.If you need help to remove an infection:

Read this first. Follow ALL the steps in it. If you do not then you will just be asked to go away and do so.Then post your HJT log (copy and paste, don't attach) into a NEW topic in the HJT Log ForumAwait advice from either a Volunteer Security Advisor or a member of Lavasoft staff.

If you see anyone other than a VSA or Lavasoft staff member giving advice in the HijackThis forum please PM a mod.DO NOT POST HJT LOGS IN ANY FORUM OTHER THAN THE OFFICIAL HJT LOG FORUM. We will be unable to deal with them there and will just tell you to go to the right place.Please do NOT bump HijackThis log posts, it won't help you receive help any faster - the VSAs look for posts with zero replies. If after one week you have not received a response please repost your log file in a NEW thread.

I just lost this file a second time, after reinstalling from a fresh download from acer. The first time, I changed it from recommended (who knows) to quarantine, but then when I found it gone, there was no way to un-quarantine it,, as it was lost in an anonymous list of many files quarantined. How do I stop the removal?

This is to say, that in addition to attacking an innocent file, the quarantine feature is not working right, as I cannot remove it from quarantine., as I cannot identify it. I am using the free anniversary version freshly downloaded.

David

I just lost this file a second time, after reinstalling from a fresh download from acer. The first time, I changed it from recommended (who knows) to quarantine, but then when I found it gone, there was no way to un-quarantine it,, as it was lost in an anonymous list of many files quarantined. How do I stop the removal?

tbh I doubt you're really gonna miss it if it's gone anway... unless you use the acer utility you could just uninstall that.

If you are a paying user (Plus/Pro License) you should visit the Lavasoft Support Centre.If you need help to remove an infection:

Read this first. Follow ALL the steps in it. If you do not then you will just be asked to go away and do so.Then post your HJT log (copy and paste, don't attach) into a NEW topic in the HJT Log ForumAwait advice from either a Volunteer Security Advisor or a member of Lavasoft staff.

If you see anyone other than a VSA or Lavasoft staff member giving advice in the HijackThis forum please PM a mod.DO NOT POST HJT LOGS IN ANY FORUM OTHER THAN THE OFFICIAL HJT LOG FORUM. We will be unable to deal with them there and will just tell you to go to the right place.Please do NOT bump HijackThis log posts, it won't help you receive help any faster - the VSAs look for posts with zero replies. If after one week you have not received a response please repost your log file in a NEW thread.

Demerol, could you please post in the false positives if you think ad-aware has deleted a legitimate item and it will get removed from the detection database.

Except that it's a heuristic detection (or perhaps behaviour based, I can't remember) so it isn't on the database in the first place.

(sorry if this reply is far from polite, I'm tired and should probably be in bed )

If you are a paying user (Plus/Pro License) you should visit the Lavasoft Support Centre.If you need help to remove an infection:

Read this first. Follow ALL the steps in it. If you do not then you will just be asked to go away and do so.Then post your HJT log (copy and paste, don't attach) into a NEW topic in the HJT Log ForumAwait advice from either a Volunteer Security Advisor or a member of Lavasoft staff.

If you see anyone other than a VSA or Lavasoft staff member giving advice in the HijackThis forum please PM a mod.DO NOT POST HJT LOGS IN ANY FORUM OTHER THAN THE OFFICIAL HJT LOG FORUM. We will be unable to deal with them there and will just tell you to go to the right place.Please do NOT bump HijackThis log posts, it won't help you receive help any faster - the VSAs look for posts with zero replies. If after one week you have not received a response please repost your log file in a NEW thread.

Lacking a time mqachine to go back to the first detection, I took all the unnamed files out of quarantine and scanned again. I started marking them ignore, but the gui is stuck in allow once for the last, 6th item, showerrmsg.dll, so I suppose I have to scan again t get to choose.